[gnutls-devel] libtasn1 | Add initial fuzzing implementation (!38)

Development of GNU's TLS library gnutls-devel at lists.gnutls.org
Wed Jul 31 13:30:41 CEST 2019




Nikos Mavrogiannopoulos started a new discussion on fuzz/libtasn1_array2tree_fuzzer.c: https://gitlab.com/gnutls/libtasn1/merge_requests/38#note_198227842

> + * This file is part of libwget.
> + *
> + * Libwget is free software: you can redistribute it and/or modify
> + * it under the terms of the GNU Lesser General Public License as published by
> + * the Free Software Foundation, either version 3 of the License, or
> + * (at your option) any later version.
> + *
> + * Libwget is distributed in the hope that it will be useful,
> + * but WITHOUT ANY WARRANTY; without even the implied warranty of
> + * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
> + * GNU Lesser General Public License for more details.
> + *
> + * You should have received a copy of the GNU Lesser General Public License
> + * along with libwget.  If not, see <https://www.gnu.org/licenses/>.
> + */
> +

A description of what is this expected to fuzz is missing here. To my understanding of the code, is the goal to check whether `asn1_array2tree` can withstand malicious input?

-- 
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/libtasn1/merge_requests/38#note_198227842
You're receiving this email because of your account on gitlab.com.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20190731/b9d052fc/attachment-0001.html>


More information about the Gnutls-devel mailing list